Vulnerabilities > Owncloud > Files Antivirus
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-01-15 | CVE-2021-33827 | OS Command Injection vulnerability in Owncloud Files Antivirus The files_antivirus component before 1.0.0 for ownCloud allows OS Command Injection via the administration settings. | 7.2 |
2022-01-15 | CVE-2021-33828 | Unrestricted Upload of File with Dangerous Type vulnerability in Owncloud Files Antivirus The files_antivirus component before 1.0.0 for ownCloud mishandles the protection mechanism by which malicious files (that have been uploaded to a public share) are supposed to be deleted upon detection. | 8.8 |
2021-02-09 | CVE-2020-16144 | Incorrect Default Permissions vulnerability in Owncloud Files Antivirus When using an object storage like S3 as the file store, when a user creates a public link to a folder where anonymous users can upload files, and another user uploads a virus the files antivirus app would detect the virus but fails to delete it due to permission issues. | 5.7 |